Ransomware victim disclosure
← All victimsYocale
listed as Canada Yocale: Appointment Management System · Claimed by Kazu · listed 16 hours ago
Status timeline
- ListedAug 23, 2026
- Data leakeddate unknown
At a glance
- Group
- Kazu
- Status
- Data leaked
- Country
- Canada
- Sector
- Professional Services
- Listed on leak site
- Aug 23, 2026
About the victim
AI dossier — public-source company profileYocale is a Canadian cloud-based appointment management and business operations platform serving healthcare providers, beauty salons, wellness centers, and professional service businesses. The platform centralizes scheduling, client records, payments, communications, and automated workflows for service-based organizations.
- Industry
- Business Management & Appointment Scheduling Software
Attack summary
Severity: high — Yocale is a SaaS platform managing sensitive client data (PII, health records, payment details) across thousands of service businesses. Confirmed data publication by ransomware operator indicates exfiltration of potentially regulated information at scale.The kazu group claims to have breached Yocale and published exfiltrated data. No specific details on the scope of compromise, data types, or operational impact are stated in the available leak post excerpt.
Data the group says was taken
AI dossier — extracted from the leak post- Client records
- Appointment data
- Payment information
- Business communications
What the group claims
Yocale is a cloud-based business management platform that helps appointment-based businesses streamline their daily operations. Founded in Canada, the platform is used by healthcare providers, beauty salons, wellness centers, and other service businesses to manage appointments, client records, payments, and communications in one centralized system.
Sources
- Victim sitewww.yocale.com
Source
Indexed 16 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

